CISA's list that day
21 August 2026
On CISA added 2 vulnerabilities to its list of exploited vulnerabilities, in Microsoft Entra ID and Synacor Zimbra Collaboration Suite (ZCS). US federal agencies must fix them by .
Added that day
| Vulnerability | Product | Our group | Listed | Deadline | EPSS |
|---|---|---|---|---|---|
| CVE-2026-73570OS Command Injection | Synacor Zimbra Collaboration Suite (ZCS) | Patch nowForensic triage required by CISA | 0.72 | ||
| CVE-2026-69836Deserialization of Untrusted Data | Microsoft Entra ID | Removed from CISA's list | 0.02 |